VulnerabilityModified
CVE-2001-0946
apmscript in Apmd in Red Hat 7.2 "Enigma" allows local users to create or change the modification dates of arbitrary files via a symlink attack on the LOW_POWER temporary file, which could be used to cause a denial of service, e.g. by creating…
LOW 3.6EPSS 0.41%
Does this matter?
Lower severity and a low EPSS score (0.41%). Track it; it rarely justifies an emergency change on its own.
Description
apmscript in Apmd in Red Hat 7.2 "Enigma" allows local users to create or change the modification dates of arbitrary files via a symlink attack on the LOW_POWER temporary file, which could be used to cause a denial of service, e.g. by creating /etc/nologin and disabling logins.
- CVSS 2.0
- 3.6 LOWAV:L/AC:L/Au:N/C:N/I:P/A:P
- EPSS
- 0.41% probability · 35th percentile
- CISA KEV
- Not listed
- Affected
- redhat/linux
- Source
- cve@mitre.org
References
- http://marc.info/?l=bugtraq&m=100743394701962&w=2
- http://www.osvdb.org/5493
- https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=56389Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/8268
- http://marc.info/?l=bugtraq&m=100743394701962&w=2
- http://www.osvdb.org/5493
- https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=56389Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/8268
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.